cbcvebase.
CVE-2021-47324
published 2024-05-21

CVE-2021-47324: In the Linux kernel, the following vulnerability has been resolved: watchdog: Fix possible use-after-free in wdt_startup() This module's remove path calls…

PriorityP349high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
1.16%
63.6th percentile
In the Linux kernel, the following vulnerability has been resolved: watchdog: Fix possible use-after-free in wdt_startup() This module's remove path calls del_timer(). However, that function does not wait until the timer handler finishes. This means that the timer handler may still be running after the driver's remove function has finished, which would result in a use-after-free. Fix by calling del_timer_sync(), which makes sure the timer handler has finished, and unable to re-schedule itself.

Affected

25 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.14.6-1 (bookworm)linux 5.14.6-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 63a3dc24bd053792f84cb4eef0168b1266202a0263a3dc24bd053792f84cb4eef0168b1266202a02
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 862f2b5a7c38762ac9e369daefbf361a91aca685862f2b5a7c38762ac9e369daefbf361a91aca685
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 0ac50a76cf3cd63db000648b3b19f3f98b8aaa760ac50a76cf3cd63db000648b3b19f3f98b8aaa76
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < dc9403097be52d57a5c9c35efa9be79d166a78afdc9403097be52d57a5c9c35efa9be79d166a78af
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 146cc288fb80c662c9c35e7bc58325d1ac0a7875146cc288fb80c662c9c35e7bc58325d1ac0a7875
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < a397cb4576fc2fc802562418b3a50b8f67d60d31a397cb4576fc2fc802562418b3a50b8f67d60d31
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b4ebf4a4692e84163a69444c70ad515de06e2259b4ebf4a4692e84163a69444c70ad515de06e2259
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8adbbe6c86bb13e14f8a19e036ae5f4f5661fd908adbbe6c86bb13e14f8a19e036ae5f4f5661fd90
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c08a6b31e4917034f0ed0cb457c3bb209576f542c08a6b31e4917034f0ed0cb457c3bb209576f542
linuxlinux_kernel< 4.4.2764.4.276
linuxlinux_kernel>= 0 < 5.10.70-15.10.70-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 4.10 < 4.14.2404.14.240
linuxlinux_kernel>= 4.15 < 4.19.1984.19.198
linuxlinux_kernel>= 4.20 < 5.4.1345.4.134
linuxlinux_kernel>= 4.5 < 4.9.2764.9.276
linuxlinux_kernel>= 5.11 < 5.12.195.12.19
linuxlinux_kernel>= 5.13 < 5.13.45.13.4
linuxlinux_kernel>= 5.5 < 5.10.525.10.52
msrcazl3_kernel_6.6.82.1-1_on_azure_linux_3.0
msrccbl2_kernel_5.15.176.3-3_on_cbl_mariner_2.0

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_debian8.8HIGH
vendor_msrc8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.